Octopus Server Flaw Lets Authenticated Users Execute Code Through Insecure JSON Deserialization

Octopus Deploy has disclosed a high-severity vulnerability in Octopus Server that could allow authenticated users to execute arbitrary code on affected servers through insecure JSON deserialization. Tracked as CVE-2026-101169, the flaw affects Octopus Server deployments on Linux and Microsoft Windows. The company released Security Advisory 2026-10 on September 29, 2026, and urged customers to upgrade […]

This article has been indexed from Cyber Security News

Read the original article: